cifs: some missing initializations on replay
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.8epss 0.1%
exploitation probability
0.1%top 97% of all CVEs
observed exploitation
nono source reports it
In the Linux kernel, the following vulnerability has been resolved:
cifs: some missing initializations on replay
In several places in the code, we have a label to signify
the start of the code where a request can be replayed if
necessary. However, some of these places were missing the
necessary reinitializations of certain local variables
before replay.
This change makes sure that these variables get initialized
after the label.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
Linux · LinuxReferences
https://git.kernel.org/stable/c/14f66f44646333d2bfd7ece36585874fd72f8286https://git.kernel.org/stable/c/1d731e512134495e0ef490ade0e4d91dc0d515echttps://git.kernel.org/stable/c/7c9ce68192eef14c777cb6ce17155d2eb2431aeahttps://git.kernel.org/stable/c/c854ab481ece4b3e5f4c2e8b22824f015ff874a5https://git.kernel.org/stable/c/c99e160938b627f6f28edee930e8abc157e84386